Claroty Team82 reveals how chaining vulnerabilities in Softing edgeAggregator OPC UA client allows full client takeover.
Claroty Team82 demonstrates its proof-of-concept exploit targeting Softing's edgeAggregator OPC UA client application.
Team82 researchers were able to chain together multiple vulnerabilities to gain complete control over the client, working responsibly with Softing to patch these issues prior to disclosure.
Key research highlights:
Technical demonstration of chained vulnerabilities in Softing edgeAggregator
OPC UA protocol client attack surface analysis
Demonstration of full client takeover and execution of unauthorized commands
Responsible disclosure and patch details provided by Softing